3+ years of experience in Infrastructure automation using Cloud Formation, Ansible, Powershell, or Terraform
3+ years in designing and building all aspects of hybrid cloud network infrastructure, including design, development, and implementation
3+ years of experience with AWS environment, operations, and automation
Experience with cloud security : intrusion, penetration, and vulnerability scanning
AWS certification required; AWS Certified Solutions Architect, CCNP, or CCIE is a plus
Technical Knowledge and Skills :
Deep knowledge of cloud IAM, configuring least-privilege, cloud networking, and secure interconnection of multiple cloud accounts and on-premises servers
Experience with IAM, SAML, AWS Control Tower customization, and SSO implementations
Experience with containerization and orchestration using Docker, Kubernetes, or EKS / ECS
Proficiency in architecting and deploying security best practices across AWS stack
Understanding of AWS sizing, pricing, and services including VPC, ELB, IAM, KMS, EC2, SSM, RDS, S3, Config, CloudTrail, SCP, CloudWatch, CloudFormation, VPC Flow Log, Security Hub, Firewall Manager, Route53, API Gateway, Lambda, and others
Experience in AWS infrastructure development using APIs and Python with boto3
Strong knowledge of AWS network topology, multi-account / VPC environments, transit gateways, Direct Connects, and VPNs
Experience with cloud security controls and API security
Minimum 2 years of experience with on-premise networking products like Cisco ASA, Firepower, Palo Alto
Experience designing and implementing cloud network security infrastructure in AWS, including monitoring, vulnerability management, and data protection
Expertise with routing protocols (BGP, OSPF, EIGRP)